On Tue, August 3, 2010 2:47 pm, Dave Cramer wrote:
> I use openvpn works like a charm.
OpenVPN only works if both sides are time syncronized to within some
fairly small interval. I've lost touch with one unit because it failed to
get an accurate time.
I use both OpenVPN and vtun. I set up vtun to connect back to me, with no
encryption or compression, then firewall it to allow only ssh.
That way if anything goes wrong with OpenVPN I can still ssh in with vtun
and clean up. But for generic connections - if you want to use rsync,
etc, OpenVPN works like a charm.
--Yan
>
> Dave
>
> On Tue, Aug 3, 2010 at 7:54 AM, j.chitte <> wrote:
>
>>
>>
>>
>>
>> --- In <ts-7000%40yahoogroups.com>, "akikem"
>> <> wrote:
>> >
>> > Hi there.
>> > I am looking forward a solution so I can access my TS-7400 even if it
>> is
>> inside a firewall I can't configure. This is because it would be nice if
>> I
>> could offer remote assistance to my costumers, but most of the time TI
>> guys
>> don't like to open ports or reconfigure anything. The equipment just do
>> some
>> basic logging, and I am using 2.6.21 ts #8 Kernel version, and the full
>> Debian version.
>> > I have use hamachi, but I have to enable a intel-based PC, to enable
>> ssh
>> to the TS-7400. It would be great if I could install directly some sort
>> of
>> VPN software like hamachi directly in the box.
>> > The problem with hamachi is that is closed source, and they only offer
>> some binary files, so I can't port it.
>> > I have investigated and I found openvpn, wippien, and tinc.
>> > Does anyone has try one of those or has another recomendation?
>> > Regards,
>> > Enrique
>> >
>>
>> What kind of functionality do you need to have? You can connect ssh via
>> any
>> port with -p (see man) so you could use port 80. Then you can bind any
>> port
>> to go through that secure link and avoid touching the firewall. Since
>> it's
>> encrypted , it's generally slower that opening the port you want but it
>> gets
>> around the problem.
>>
>> If no incoming connections are allowed the customer would have to
>> initiate
>> the connection.
>>
>> ssh -p 6622 -L 5900:localhost:5900 blah.dyndns.com
>>
>> I've found tigervnc fast even for remote X sessions on x86 to x86-64
>>
>>
>>
>
>
> !DSPAM:4c582c8592366551461313!
>
--
If you have eight hours to chop down a tree
spend six sharpening your axe.
--Abraham Lincoln
------------------------------------
Yahoo! Groups Links
<*> To visit your group on the web, go to:
http://groups.yahoo.com/group/ts-7000/
<*> Your email settings:
Individual Email | Traditional
<*> To change settings online go to:
http://groups.yahoo.com/group/ts-7000/join
(Yahoo! ID required)
<*> To change settings via email:
<*> To unsubscribe from this group, send an email to:
<*> Your use of Yahoo! Groups is subject to:
http://docs.yahoo.com/info/terms/
|